External Links Modifier Security & Risk Analysis

wordpress.org/plugins/external-links-modifier

External Links Modifier automatically updates external links in your posts to open in a new tab with rel="nofollow noreferrer".

0 active installs v1.0 PHP + WP 6.2+ Updated Mar 10, 2025
external-linksmeta-boxnofollownoreferrer
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is External Links Modifier Safe to Use in 2026?

Generally Safe

Score 92/100

External Links Modifier has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The 'external-links-modifier' plugin v1.0 demonstrates a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, unescaped output, or file operations is highly commendable. The fact that 100% of SQL queries use prepared statements and all identified outputs are properly escaped indicates diligent development practices. Furthermore, the presence of both nonce and capability checks, even with a limited attack surface, suggests an awareness of fundamental WordPress security principles.

From a vulnerability history perspective, the complete lack of known CVEs and historical vulnerabilities is a significant strength, indicating a stable and likely secure codebase. The taint analysis also shows no flows with unsanitized paths, further bolstering confidence in the plugin's security. However, it's important to note that the attack surface is reported as zero, which might be a simplification or indicate a plugin with extremely limited functionality. If there are hidden entry points not captured by this analysis, the overall risk could be higher. Despite this minor caveat, the plugin appears to be well-developed from a security standpoint.

Vulnerabilities
None known

External Links Modifier Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

External Links Modifier Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
2 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped2 total outputs
Attack Surface

External Links Modifier Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionadd_meta_boxesincludes\admin.php:10
actionsave_postincludes\admin.php:47
filterthe_contentincludes\frontend.php:77
Maintenance & Trust

External Links Modifier Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 10, 2025
PHP min version
Downloads452

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

External Links Modifier Developer Profile

Prabesh Shrestha

1 plugin · 0 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect External Links Modifier

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Data Attributes
data-extelimo-enabled
FAQ

Frequently Asked Questions about External Links Modifier